Studying Cybersecurity in Civil Aviation, Including Developing and Applying Aviation Cybersecurity Risk Assessment

被引:16
作者
Elmarady, Ahmed Abdelwahab [1 ]
Rahouma, Kamel [2 ]
机构
[1] Minia Univ, Fac Engn, Al Minya 61519, Egypt
[2] Nahda Univ Beni Suef, Dept Comp Sci, Bani Suwayf 62511, Egypt
关键词
Computer security; Surveillance; Radio navigation; Risk management; Satellite navigation systems; Systematics; Aircraft navigation; Aeronautical communication systems; aeronautical surveillance systems; air navigation systems; cybersecurity; cybersecurity risk assessment; cyber resilience; radio navigation aids; system-wide information management (SWIM); SECURITY; VULNERABILITIES; SURVEILLANCE;
D O I
10.1109/ACCESS.2021.3121230
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In addition to the importance of safety in civil aviation, the significance of cybersecurity in the aviation sector cannot be ignored, and this fact has often been highlighted owing to frequent cyber-attacks that denigrate victim(s) and also lead to political and economic controversies. Cybersecurity has recently received a major boost, with the shift of air navigation facilities from analog ground-based systems to digital space-based systems to accommodate the tremendous growth in air traffic density. Furthermore, most air navigation facilities have open designs that tend to overlook security concerns. In this regard, identifying a systematic methodology for aviation cybersecurity risk assessment is a key element in the identification of potential threats, and assessment of their likelihood and risk levels, whereby risks can be reduced to tolerable levels through appropriate mitigation measures. Existing review articles have not addressed cybersecurity in all the various aviation systems, and have not considered a systematic methodology for aviation cybersecurity risk assessment. This paper therefore presents a systematic qualitative and quantitative cybersecurity risk assessment methodology for legacy and next-generation critical infrastructure in aviation systems, such as air-ground communication, radio navigation aids, aeronautical surveillance, and system-wide information management (SWIM). Our analysis shows that the communication, navigation, and surveillance systems with the highest risk levels are very-high frequency voice communication, satellite-based navigation, and automatic dependent surveillance-broadcast, respectively, while those with the lowest risk levels are controller-pilot data link communication, ground-based radio navigation aids, and secondary surveillance radar, respectively. Furthermore, the risk level of potential cyber-attacks in SWIM is medium.
引用
收藏
页码:143997 / 144016
页数:20
相关论文
共 82 条
[1]  
Adamy DL, 2009, ARTECH HSE RADAR LIB, P1
[2]  
Air Transport Bureau, 2020, Effects of Novel Coronavirus (COVID-19) on Civil Aviation: Economic Impact Analysis
[3]  
Andersen AC, 2011, COMP ANAL MULTILATER
[4]  
[Anonymous], 2015, 10039 INT CIV AV ORG
[5]  
[Anonymous], 2019, Doc 10044,
[6]  
[Anonymous], 2020, 9924 ICAO, Vthird
[7]  
[Anonymous], 2019, GLOBAL AIR NAVIGATIO, V6th
[8]  
[Anonymous], 2014, ED012014ED0400 EUR A
[9]  
[Anonymous], 2018, 8071 ICAO, V1
[10]  
[Anonymous], 2018, HDB RADIO FREQEUNCY, V1